PatchSiren

acmethemes CVE debriefs

These pages are published after PatchSiren validates generated defensive summaries against stored public CVE and source evidence.

MEDIUM acmethemes CVE published 2026-04-08

CVE-2026-39622

A Missing Authorization vulnerability in acmethemes Education Base education-base allows Exploiting Incorrectly Configured Access Control Security Levels. This issue affects Education Base: from n/a through <= 3.0.8. The vulnerability has a CVSS score of 5.3 and a severity rating of MEDIUM. Users of Education Base theme version 3.0.8 or earlier should apply patches or mitigations to prevent potential secu [truncated]